What is your e-mail address?

My e-mail address is:

Do you have a password?

Forgot your password? Click here
close

Identity Authentication


Analysis of social site hack: Are risks too great for gov workers?

Imperva's reconstruction of the MilitarySingles hack shows the inherent risks of user-generated content and asks if government needs a "higher standard" for social networking.

Report: Attacks on gas pipeline networks linked to RSA hack, China

Digital signatures used in the spear-phishing campaign against the natural gas industry are identical to those used in the RSA breach, according to a published report.

9 keys to making BYOD work

Employees will use personal mobile devices for work anyway; here are tips on making sure it's done right.

New spec lets any mobile device swap biometrics

New protocols sponsored by the National Institute of Standards and Technology, the FBI and the Homeland Security Department would make biometric technology interoperable and easier to use.

Decisions on cloud 'all about the data,' USPS security officer says

Agencies should only deal with what they can tolerate as a risk, the U.S. Postal Service's Chuck McGann tells a FedScoop audience.

Targeted attacks, mobile vulnerabilities on the rise, report states

Criminals continue to exploit old vulnerabilities as enterprises, and users fail to keep up with the flood of security updates, the latest Symantec report states.

World War I Dazzle Painting

WWI 'dazzle paint' fools face recognition scanners

An artist finds that the same approach used in World War I to confound the rangefinders on attacking ships will prevent a facial scanner from recognizing you.

90 percent of 'secure' HTTPS sites are vulnerable, study finds

A nonprofit initiative to check on SSL implementations finds that 75 percent of those sites are vulnerable to a BEAST attack, and only 10 percent are secure.

Conficker returns, exploiting weak passwords on network systems

Infections by the persistent worm, which takes advantage of weak or shared passwords or stolen login tokens, rose in 2011, Microsoft says.

For some hacks, everything old is new again

A cybersecurity report from Hewlett-Packard highlights the prevalence and persistence of coding errors, vulnerabilities and exploits that should have been corrected long ago.

Mike Daconta

Hackers own today's free-love PC architecture, and it's time to move on

With the coming post-PC architecture, sensor, device and cloud components will form a new multi-machine OS with built-in solutions for security and ID management.

William Jackson

Finally, an alternative to the tyranny of passwords?

DARPA's "active authentication" would be a welcome alternative to passwords and other cumbersome credentials.

NIST proposes cleaning up the Digital Signature Standard

Changes proposed by the National Institute of Standards and Technology would clarify the transition to a new set of approved tools and correct some errors in the current version.

Greg Crowe

Beware 'rnicrosoft.com' and similar sp00fed links in e-mail

Even if you check the URLs for links in e-mail and other messages, you could still be fooled by homographs.

Victim list in Utah medical-records hack grows to 780,000

State IT and health officials say 280,000 of the victims had their Social Security numbers stolen in the medical-records hack, which came from Eastern Europe.

GCN Awards 2012

GCN eNewsletters

Editorial Webcasts

  • Cloud Computing: Ushering in the Next Wave of Data Center Consolidation Register Now

    In this webcast, a government IT expert will explore the top considerations, operational requirements and policy challenges inherent to integrating new and legacy applications in the cloud. You will explore the pros and cons of adopting a public vs. private cloud model based on your specific security and operational requirements, as well as how you can fully leverage your cloud investment to achieve efficiency, collaboration and transparency needs. Read more